you exploit CVE-2013-2888 connecting a USB mouse/thing to a Linux machine and you get..what? @nicowaisman
@jduck Yup. Making it controllable would be impressive, but the flaw's existed since HID was added to Linux. Surely someone's done it.
-
-
@kees_cook apparently someone at immunity did. see their ceu page -
@jduck Yeah, I emailed@daveaitel hoping to see a copy. :) I can't tell from context if it's "just" a crash-PoC or a functional exploit. -
@kees_cook@jduck our exploit is worky worky, as we say. You should buy ceu :) -
@daveaitel so, I publish a CVE that you write about, but you won't share that document with me? come on, sharing is fun!
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.